8.4
/ 10
HIGH
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Description
A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by crafting malicious archive files. This vulnerability was exploited in the wild and was discovered by Anton Cherepanov, Peter Košinár, and Peter Strýček
from ESET.
from ESET.
Basic Information
ID
CVE-2025-8088
Source
ESET
Published
Aug 8, 2025 at 11:11
Affected Product
Vendor
win.rar GmbH
Product
WinRAR
Affected Versions
win.rar GmbH WinRAR 0